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1 DAOP-ADL: an architecture description language for dynamic component 80% 
2) and aspect-based development 

Monica Pinto , Lidia Fuentes , Jose Mana Troya 

Proceedings of the second international conference on Generative programming 

and component engineering September 2003 

Architecture description languages deal with the description, analysis and reuse of 
software architectures. This paper describes DAOP-ADL, a component- and aspect- 
based language to specify the architecture of an application in terms of components, 
aspects and a set of plug-compatibility rules between them. With the aim of 
connecting the specification of the application architecture to the implementation, we 
describe our language using XML and XML Schemas. The DAOP-ADL language was 
designed to be ... 



2 Interoperable Web services for computational portals 77% 

|j] Marlon Pierce , Geoffrey Fox , Choonhan Youn , Steve Mock , Kurt Mueller , Ozgur Balsoy 
Proceedings of the 2002 ACM/IEEE conference on Supercomputing November 2002 
Computational web portals are designed to simplify access to diverse sets of high 
performance computing resources, typically through an interface to computational 
Grid tools. An important shortcoming of these portals is their lack of interoperable and 
reusable services. This paper presents an overview of research efforts undertaken by 
our group to build interoperating portal services around a Web Services model. We 
present a comprehensive view of an interoperable portal architecture, beginning w ... 

3 Business-to-business interactions: issues and enabling technologies 77% 

B. Medjahed , B. Benatallah , A. Bouguettaya , A. H. H. Ngu , A. K. Elmagarmid 

The VLDB Journal — The International Journal on Very Large Data Bases May 2003 

Volume 12 Issue 1 

Business-to-Business (B2B) technologies pre-date the Web. They have existed for at 
least as long as the Internet. B2B applications were among the first to take advantage 
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networking. The ubiquity and the affordability of the Web has made it possible for the 
masses of businesses to automate their B2B interactions. However, several issu ... 
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1 Access control: First experiences using XACML for access control in 77% 
2) distributed systems 

Markus Lorch , Seth Proctor , Rebekah Lepro , Dennis Kafura , Sumit Shah 
Proceedings of the 2003 ACM workshop on XML security October 2003 

Authorization systems today are increasingly complex. They span domains of 
administration, rely on many different authentication sources, and manage 
permissions that can be as complex as the system itself. Worse still, while there are 
many standards that define authentication mechanisms, the standards that address 
authorization are less well defined and tend to work only within homogeneous 
systems. This paper presents XACML, a standard access control language, as one 
component of a distributed a ... 



2 Certificate-based authorization policy in a PKI environment 77% 

Mary R. Thompson , Abdelilah Essiari , Srilekha Mudumbai 

ACM Transactions on Information and System Security (TISSEC) November 2003 
Volume 6 Issue 4 

The major emphasis of public key infrastructure has been to provide a 
cryptographically secure means of authenticating identities. However, procedures for 
authorizing the holders of these identities to perform specific actions still need 
additional research and development. While there are a number of proposed 
standards for authorization structures and protocols such as KeyNote, SPKI, and SAML 
based on X.509 or other key-based identities, none have been widely adopted. As part 
of an effort to us ... 



3 Abstraction-based intrusion detection in distributed environments 77% 

pffi ACM Transactions on Information and System Security (TISSEC) November 2001 
Volume 4 Issue 4 

Abstraction is an important issue in intrusion detection, since it not only hides the 
difference between heterogeneous systems, but also allows generic intrusion- 
detection models. However, abstraction is an error-prone process and is not well 
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supported in current intrusion-detection systems (IDSs). This article presents a 
hierarchical model to support attack specification and event abstraction in distributed 
intrusion detection. The model involves three concepts: system view, signature ... 
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1 Investigating link service infrastructures 80% 

□ft David C. De Roure , Nigel G. Walker , Leslie A. Carr 

Proceedings of the eleventh ACM on Hypertext and hypermedia May 2000 



2 An architecture for a secure service discovery service 80% 

Steven E. Czerwinski , Ben Y. Zhao , Todd D. Hodes , Anthony D. Joseph , Randy H. Katz 
Proceedings of the 5th annual ACM/IEEE international conference on Mobile 
computing and networking August 1999 



3 Bibliography of recent publications on computer communication 80% 

Martha Steenstrup 

ACM SIGCOMM Computer Communication Review January 1998 
Volume 28 Issue 1 

The quantitative results presented in our SIGCOMM '97 paper [1] include numerous 
minor errors. These errors were caused by programming bugs that led to faulty 
analyses and simulations, and by inaccurate transcriptions during the preparation of 
the paper. Here we present corrected figures and tables, as well as corrections to 
values that appeared in the text of the original paper, The effect of correcting the 
errors is to reduce the differences between the results based on the proxy trace and 
tho ... 



4 Access Control: Design and implementation of a flexible RBAOservice in 77% 
[J a n object-oriented scripting language 

Gustaf Neumann , Mark Strembeck 

Proceedings of the 8th ACM conference on Computer and Communications 

Security November 2001 

In this paper we present the design and implementation of the xorbac component 
that provides a flexible RBAC service. The xorbac, implementation conforms to level 
4a of the unified NIST model for RBAC and can be reused for arbitrary applications on 
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Unix or Windows with a C or Tel linkage, xorbac runtime elements can be serialized 
and recreated from RDF data models conforming to a well-defined RDF schema. 
Furthermore we present our experiences with xorbac for t ... 



5 Posters and Short Papers: Integrated broadband environment for 77% 
personalized TV experience (IBEX): implementation study and practice 

Yoshihisa Gonno , Fumihiko Nishio , Tomohiro Tsunoda , Yasuaki Yamagishi 
Proceedings of the ninth ACM international conference on Multimedia October 
2001 

This is a continuing work on the IBEX, that is Integrated Broadband Environment for 
Personalized TV Experience. In this paper, we describe our implementation study of 
the IBEX as a TV-Anytime service platform. We also describe potential IBEX 
applications on the basis of TV-Anytime specifications. The Adaptive Content Guide 
(ACG) is expected to provide consumers with adaptive access to favorite contents and 
metadata customized not only for user preferences but also terminal capabilities. We 
also ... 



6 Access control: First experiences using XACML for access control in 77% 
2) distributed systems 

Markus Lorch , Seth Proctor , Rebekah Lepro , Dennis Kafura , Sumit Shah 
Proceedings of the 2003 ACM workshop on XML security October 2003 

Authorization systems today are increasingly complex. They span domains of 
administration, rely on many different authentication sources, and manage 
permissions that can be as complex as the system itself. Worse still, while there are 
many standards that define authentication mechanisms, the standards that address 
authorization are less well defined and tend to work only within homogeneous 
systems. This paper presents XACML, a standard access control language, as one 
component of a distributed a ... 



7 Certificate-based authorization policy in a PKI environment 77% 

Mary R. Thompson , Abdelilah Essiari , Srilekha Mudumbai 

ACM Transactions on Information and System Security (TISSEC) November 2003 
Volume 6 Issue 4 

The major emphasis of public key infrastructure has been to provide a 
cryptographically secure means of authenticating identities. However, procedures for 
authorizing the holders of these identities to perform specific actions still need 
additional research and development. While there are a number of proposed 
standards for authorization structures and protocols such as KeyNote, SPKI, and 
SAML based on X.509 or other key-based identities, none have been widely adopted. 
As part of an effort to us ... 



8 Implementing rote based access control for federated information 77% 
U systems on the web 

Kerry Taylor , James Murty 

Proceedings of the Australasian information security workshop conference on 

ACSW frontiers 2003 - Volume 21 January 2003 

There is rapidly increasing interest in Australia in on-line sharing of information stored 
in corporate databases, especially within and between staff of independent 
government agencies. Biological collections databases and population health GIS are 
good examples of the frequent situation where database custodians are looking for 
dynamic, distributed, heterogenous federated information system models for 
information sharing within loosely constituted communities. This paper describes a 
security m ... 



h 



c g e cf c 



Results 



Page 3 of 4 



9 iMobile EE: an enterprise mobile service platform 77% 

Cft Yih-Farn Chen , Huale Huang , Rittwik Jana , Trevor Jim , Matti Hiltunen , Sam John , 
Serban Jora , Radhakrishnan Muthumanickam , Bin Wei 
Wireless Networks July 2003 
Volume 9 Issue 4 

iMobile 1 is an enterprise mobile service platform that allows resource-limited mobile 
devices to communicate with each other and to securely access corporate contents 
and services. The original iMobile architecture consists of devlets that provide protocol 
interfaces to different mobile devices and infolets that access and transcode 
information based on device profiles. iMobile Enterprise Edition (iMobile EE) is a 
redesign of the original iMobile architecture to address the security, ... 



10 Interoperable Web services for computational portals 77% 

pft Marlon Pierce , Geoffrey Fox , Choonhan Youn , Steve Mock , Kurt Mueller , Ozgur Balsoy 
Proceedings of the 2002 ACM/IEEE conference on Supercomputing November 
2002 

Computational web portals are designed to simplify access to diverse sets of high 
performance computing resources, typically through an interface to computational 
Grid tools. An important shortcoming of these portals is their lack of interoperable 
and reusable services. This paper presents an overview of research efforts 
undertaken by our group to build interoperating portal services around a Web 
Services model. We present a comprehensive view of an interoperable portal 
architecture, beginning w ... 



11 The Web Service Discovery Architecture 77% 

fyft Wolfgang Hoschek 

Proceedings of the 2002 ACM/IEEE conference on Supercomputing November 
2002 

In this paper, we propose the Web Service Discovery Architecture (WSDA). At 
runtime, Grid applications can use this architecture to discover and adapt to remote 
services. WSDA promotes an interoperable web service discovery layer by defining 
appropriate services, interfaces, operations and protocol bindings, based on industry 
standards. It is unified because it subsumes an array of disparate concepts, interfaces 
and protocols under a single semi-transparent umbrella. It is modular because it 
def ... 



12 Business-to-business interactions: issues and enabling technologies 77% 

B. Medjahed , B. Benatallah , A. Bouguettaya , A. H. H. Ngu , A. K. Elmagarmid 
The VLDB Journal — The International Journal on Very Large Data Bases May 

2003 

Volume 12 Issue 1 

Business-to-Business (B2B) technologies pre-date the Web. They have existed for at 
least as long as the Internet. B2B applications were among the first to take 
advantage of advances in computer networking. The Electronic Data Interchange 
(EDI) business standard is an illustration of such an early adoption of the advances in 
computer networking. The ubiquity and the affordability of the Web has made it 
possible for the masses of businesses to automate their B2B interactions. However, 
several issu ... 



13 ObjectGlobe: Ubiquitous query processing on the Internet 77% 

Q R. Braumandl , M. Keidl , A. Kemper , D. Kossmann , A. Kreutz , S. Seltzsam , K. Stocker 
The VLDB Journal — The International Journal on Very Large Data Bases August 
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2001 

Volume 10 Issue 1 

We present the design of ObjectGlobe, a distributed and open query processor for 
Internet data sources. Today, data is published on the Internet via Web servers which 
have, if at all, very localized query processing capabilities. The goal of the 
ObjectGlobe project is to establish an open marketplace in which data and query 
processing capabilities can be distributed and used by any kind of Internet 
application. Furthermore, ObjectGlobe integrates cycle providers (i.e., machi ... 



14 An architecture for secure wide-area service discovery 77% 

Todd D. Hodes , Steven E. Czerwinski , Ben Y. Zhao , Anthony D. Joseph , Randy H. Katz 
L - 1 Wireless Networks March 2002 

Volume 8 Issue 2/3 

The widespread deployment of inexpensive communications technology, 
computational resources in the networking infrastructure, and network-enabled end 
devices poses an interesting problem for end users: how to locate a particular 
network service or device out of hundreds of thousands of accessible services and 
devices. This paper presents the architecture and implementation of a secure wide- 
area Service Discovery Service (SDS). Service providers use the SDS to advertise 
descriptions of available ... 



15 Abstraction-based intrusion detection in distributed environments 77% 

ACM Transactions on Information and System Security (TISSEC) November 2001 
— Volume 4 Issue 4 

Abstraction is an important issue in intrusion detection, since it not only hides the 
difference between heterogeneous systems, but also allows generic intrusion- 
detection models. However, abstraction is an error-prone process and is not well 
supported in current intrusion-detection systems (IDSs). This article presents a 
hierarchical model to support attack specification and event abstraction in distributed 
intrusion detection. The model involves three concepts: system view, signature ... 



16 Location-aware mobile applications based on directory services 77% 

Henning Maass 

Mobile Networks and Applications August 1998 
Volume 3 Issue 2 

Location-aware applications are becoming increasingly attractive due to the 
widespread dissemination of wireless networks and the emergence of small and cheap 
locating technologies. We developed a location information server that simplifies and 
speeds up the development of these applications by offering a set of generic location 
retrieval and notification services to the application. The data model and the access 
protocols of these services are based on the X.500 directory service and the I ... 



17 Location-aware mobile applications based on directory services 77% 

Henning MaaB 

Proceedings of the 3rd annual ACM/IEEE international conference on Mobile 
computing and networking September 1997 
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1 Investigating link service infrastructures 80% 

□h David C. De Roure , Nigel G. Walker , Leslie A. Carr 

Proceedings of the eleventh ACM on Hypertext and hypermedia May 2000 



2 An architecture for a secure service discovery service 80% 

Steven E. Czerwinski , Ben Y. Zhao , Todd D. Hodes , Anthony D. Joseph , Randy H. Katz 
Proceedings of the 5th annual ACM/IEEE international conference on Mobile 
computing and networking August 1999 



3 Bibliography of recent publications on computer communication 80% 

Martha Steenstrup 

ACM SIGCOMM Computer Communication Review January 1998 
Volume 28 Issue 1 

The quantitative results presented in our SIGCOMM '97 paper [1] include numerous 
minor errors. These errors were caused by programming bugs that led to faulty 
analyses and simulations, and by inaccurate transcriptions during the preparation of 
the paper. Here we present corrected figures and tables, as well as corrections to 
values that appeared in the text of the original paper. The effect of correcting the 
errors is to reduce the differences between the results based on the proxy trace and 
tho ... 



4 Access Control: Design and implementation of a flexible RBAC-service in 77% 
an object-oriented scripting language 

Gustaf Neumann , Mark Strembeck 

Proceedings of the 8th ACM conference on Computer and Communications 

Security November 2001 

In this paper we present the design and implementation of the xorbac component 
that provides a flexible RBAC service. The xorbac, implementation conforms to level 
4a of the unified NIST model for RBAC and can be reused for arbitrary applications on 
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Unix or Windows with a C or Tel linkage, xorbac runtime elements can be serialized 
and recreated from RDF data models conforming to a well-defined RDF schema. 
Furthermore we present our experiences with xorbac for t ... 

5 Posters and Short Papers: Integrated broadband environment for 77% 
2 personalized TV experience (IBEX): implementation study and practice 

Yoshihisa Gonno , Fumihiko Nishio , Tomohiro Tsunoda , Yasuaki Yamagishi 
Proceedings of the ninth ACM international conference on Multimedia October 
2001 

This is a continuing work on the IBEX, that is Integrated Broadband Environment for 
Personalized "TV Experience. In this paper, we describe our implementation study of 
the IBEX as a TV-Anytime service platform. We also describe potential IBEX 
applications on the basis of TV-Anytime specifications. The Adaptive Content Guide 
(ACG) is expected to provide consumers with adaptive access to favorite contents and 
metadata customized not only for user preferences but also terminal capabilities. We 
also ... 

Access control: First experiences using XACML for access control in 77% 
distributed systems 

Markus Lorch , Seth Proctor , Rebekah Lepro , Dennis Kafura , Sumit Shah 
Proceedings of the 2003 ACM workshop on XML security October 2003 

Authorization systems today are increasingly complex. They span domains of 
administration, rely on many different authentication sources, and manage 
permissions that can be as complex as the system itself. Worse still, while there are 
many standards that define authentication mechanisms, the standards that address 
authorization are less well defined and tend to work only within homogeneous 
systems. This paper presents XACML, a standard access control language, as one 
component of a distributed a ... 

Certificate-based authorization policy in a PKI environment 77% 

Mary R. Thompson , Abdelilah Essiari , Srilekha Mudumbai 

ACM Transactions on Information and System Security (TISSEC) November 2003 
Volume 6 Issue 4 

The major emphasis of public key infrastructure has been to provide a 
cryptographically secure means of authenticating identities. However, procedures for 
authorizing the holders of these identities to perform specific actions still need 
additional research and development. While there are a number of proposed 
standards for authorization structures and protocols such as KeyNote, SPKI, and 
SAML based on X.509 or other key-based identities, none have been widely adopted. 
As part of an effort to us ... 

Implementing role based access control for federated information 77% 
systems on the web 

Kerry Taylor , James Murty 

Proceedings of the Australasian information security workshop conference on 
ACSW frontiers 2003 - Volume 21 January 2003 

There is rapidly increasing interest in Australia in on-line sharing of information stored 
in corporate databases, especially within and between staff of independent 
government agencies. Biological collections databases and population health GIS are 
good examples of the frequent situation where database custodians are looking for 
dynamic, distributed, heterogenous federated information system models for 
information sharing within loosely constituted communities. This paper describes a 
security m ... 
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9 iMobile EE: an enterprise mobile service platform 77% 

Yih-Farn Chen , Huale Huang , Rittwik Jana , Trevor Jim , Matti Hiltunen , Sam John , 
— Serban Jora , Radhakrishnan Muthumanickam , Bin Wei 
Wireless Networks July 2003 
Volume 9 Issue 4 

iMobile 1 is an enterprise mobile service platform that allows resource-limited mobile 
devices to communicate with each other and to securely access corporate contents 
and services. The original iMobile architecture consists of devlets that provide protocol 
interfaces to different mobile devices and infolets that access and transcode 
information based on device profiles. iMobile Enterprise Edition (iMobile EE) is a 
redesign of the original iMobile architecture to address the security, ... 



10 Interoperable Web services for computational portals 77% 

Marlon Pierce , Geoffrey Fox , Choonhan Youn , Steve Mock , Kurt Mueller , Ozgur Balsoy 
Proceedings of the 2002 ACM/IEEE conference on Supercomputing November 
2002 

Computational web portals are designed to simplify access to diverse sets of high 
performance computing resources, typically through an interface to computational 
Grid tools. An important shortcoming of these portals is their lack of interoperable 
and reusable services. This paper presents an overview of research efforts 
undertaken by our group to build interoperating portal services around a Web 
Services model. We present a comprehensive view of an interoperable portal 
architecture, beginning w ... 



11 The Web Service Discovery Architecture 77% 

Cft Wolfgang Hoschek 

Proceedings of the 2002 ACM/IEEE conference on Supercomputing November 
2002 

In this paper, we propose the Web Service Discovery Architecture (WSDA). At 
runtime, Grid applications can use this architecture to discover and adapt to remote 
services. WSDA promotes an interoperable web service discovery layer by defining 
appropriate services, interfaces, operations and protocol bindings, based on industry 
standards. It is unified because it subsumes an array of disparate concepts, interfaces 
and protocols under a single semi-transparent umbrella. It is modular because it 
def ... 



12 Business-to-business interactions: issues and enabling technologies 77% 

□j B. Medjahed , B. Benatallah , A. Bouguettaya , A. H. H. Ngu , A. K. Elmagarmid 

The VLDB Journal — The International Journal on Very Large Data Bases May 

2003 

Volume 12 Issue 1 

Business-to-Business (B2B) technologies pre-date the Web. They have existed for at 
least as long as the Internet. B2B applications were among the first to take 
advantage of advances in computer networking. The Electronic Data Interchange 
(EDI) business standard is an illustration of such an early adoption of the advances in 
computer networking. The ubiquity and the affordability of the Web has made it 
possible for the masses of businesses to automate their B2B interactions. However, 
several issu ... 



13 ObjectGlobe: Ubiquitous query processing on the Internet 77% 
R. Braumandl , M. Keidl , A. Kemper , D. Kossmann , A. Kreutz , S. Seltzsam , K. Stocker 
The VLDB Journal — The International Journal on Very Large Data Bases August 



h 



c g e cf c 



Results 



Page 4 of 4 



2001 

Volume 10 Issue 1 

We present the design of ObjectGlobe, a distributed and open query processor for 
Internet data sources. Today, data is published on the Internet via Web servers which 
have, if at all, very localized query processing capabilities. The goal of the 
ObjectGlobe project is to establish an open marketplace in which data and query 
processing capabilities can be distributed and used by any kind of Internet 
application. Furthermore, ObjectGlobe integrates cycle providers (i.e., machi ... 

14 An architecture for secure wide-area service discovery 77% 

Todd D. Hodes , Steven E. Czerwinski , Ben Y. Zhao , Anthony D. Joseph , Randy H. Katz 
— Wireless Networks March 2002 

Volume 8 Issue 2/3 

The widespread deployment of inexpensive communications technology, 
computational resources in the networking infrastructure, and network-enabled end 
devices poses an interesting problem for end users: how to locate a particular 
network service or device out of hundreds of thousands of accessible services and 
devices. This paper presents the architecture and implementation of a secure wide- 
area Service Discovery Service (SDS). Service providers use the SDS to advertise 
descriptions of available ... 

15 Abstraction-based intrusion detection in distributed environments 77% 

ACM Transactions on Information and System Security (TISSEC) November 2001 
Volume 4 Issue 4 

Abstraction is an important issue in intrusion detection, since it not only hides the 
difference between heterogeneous systems, but also allows generic intrusion- 
detection models. However, abstraction is an error-prone process and is not well 
supported in current intrusion-detection systems (IDSs). This article presents a 
hierarchical model to support attack specification and event abstraction in distributed 
intrusion detection. The model involves three concepts: system view, signature ... 

16 Location-aware mobile applications based on directory services 77% 

Henning Maass 

Mobile Networks and Applications August 1998 
Volume 3 Issue 2 

Location-aware applications are becoming increasingly attractive due to the 
widespread dissemination of wireless networks and the emergence of small and cheap 
locating technologies. We developed a location information server that simplifies and 
speeds up the development of these applications by offering a set of generic location 
retrieval and notification services to the application. The data model and the access 
protocols of these services are based on the X.500 directory service and the I ... 

17 Location-aware mobile applications based on directory services 77% 

£ft Henning MaaB 

Proceedings of the 3rd annual ACM/IEEE international conference on Mobile 
computing and networking September 1997 
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1 Large-scale mail with Postfix, OpenLDAP and courier 85% 

tft Dave Dribin , Keith Garner 
Linux Journal February 2003 
Volume 2003 Issue 106 

Here's a flexible solution for hosting mail for many domains on one server. 



2 Access control: First experiences using XACML for access control in 77% 
Q distributed systems 

Markus Lorch , Seth Proctor , Rebekah Lepro , Dennis Kafura , Sumit Shah 
Proceedings of the 2003 ACM workshop on XML security October 2003 

Authorization systems today are increasingly complex. They span domains of 
administration, rely on many different authentication sources, and manage 
permissions that can be as complex as the system itself. Worse still, while there are 
many standards that define authentication mechanisms, the standards that address 
authorization are less well defined and tend to work only within homogeneous 
systems. This paper presents XACML, a standard access control language, as one 
component of a distributed a ... 



3 Putting OSX in an open access lab: (or "The Joy of X") 77% 
David L. R. Houston 

Proceedings of the 31st annual ACM SIGUCCS conference on User services 

September 2003 

This paper discusses the challenges of putting Apple Macintosh OSX into open access 
and computer lab environments. 



4 Paranoid penguin: authenticate with LDAP, Part III 77% 

Cft Mick Bauer 

Linux Journal September 2003 
Volume 2003 Issue 113 
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5 Interoperable Web services for computational portals 77% 

Eh Marlon Pierce , Geoffrey Fox , Choonhan Youn , Steve Mock , Kurt Mueller , Ozgur Balsoy 
— Proceedings of the 2002 ACM/IEEE conference on Supercomputing November 
2002 

Computational web portals are designed to simplify access to diverse sets of high 
performance computing resources, typically through an interface to computational 
Grid tools. An important shortcoming of these portals is their lack of interoperable 
and reusable services. This paper presents an overview of research efforts 
undertaken by our group to build interoperating portal services around a Web 
Services model. We present a comprehensive view of an interoperable portal 
architecture, beginning w ... 



6 Constraints: On context in authorization policy 77% 

Eft Patrick McDaniel 

Proceedings of the eighth ACM symposium on Access control models and 

technologies June 2003 

Authorization policy infrastructures are evolving with the complex environments that 
they support. However, the requirements and technologies supporting context are not 
yet well understood. Often implemented as condition functions or predefined 
attributes, context is used to more precisely control when and how policy is enforced. 
This paper considers context requirements and services in authorization policy. The 
properties and security requirements of context evaluation are classified. A key obs ... 



7 OpenLDAP everywhere 77% 

Craig Swanson , Matt Lung 
— Linux Journal December 2002 
Volume 2002 Issue 104 

A single company-wide directory service offers mail address lookup and file sharing to 
Linux and Windows users. 



8 One user, one password: integrating unix accounts and active directory 77% 

Eft David J. Blezard , Jerry Marceau 

Proceedings of the 30th annual ACM SIGUCCS conference on User services 

November 2002 

The University of New Hampshire has a history of using centralized Unix accounts to 
authenticate user access to computers in the public Student Computing Clusters. The 
advent of Windows 2000 meant that changes would be necessary to support the 
Active Directory architecture underlying Windows 2000 authentication and 
authorization. Given limited resources, manually maintaining Active Directory 
accounts for over 12000 students is an impossibility. A new system was needed to 
automatically generate a ... 



9 The lightweight directory access protocol 77% 
Eft Sander van Vugt 

Linux Journal September 2001 

Volume 2001 Issue 89 

Lighter data retrieval and an alternative to NIS. 



10 Query Language for Semantic Web: RQL: a declarative query language 77% 
0) for RDF 

Gregory Karvounarakis , Sofia Alexaki , Vassilis Christophides , Dimitris Plexousakis , 
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Michel Scholl 

Proceedings of the eleventh international conference on World Wide Web May 

2002 

Real-scale Semantic Web applications, such as Knowledge Portals and E- 
Marketplaces, require the management of large volumes of metadata, i.e., 
information describing the available Web content and services. Better knowledge 
about their meaning, usage, accessibility or quality will considerably facilitate an 
automated processing of Web resources. The Resource Description Framework (RDF) 
enables the creation and exchange of metadata as normal Web data. Although 
voluminous RDF descriptions are alrea ... 



11 COAS: A Flexible Approach to System Administration Tools 77% 

□j Olaf Kirch 

Linux Journal February 1999 

12 Data-intensive computing and digital libraries 77% 
Reagan Moore , Thomas A. Prince , Mark Ellisman 

Communications of the ACM November 1998 
Volume 41 Issue 11 
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